Publication | Closed Access
Apposcopy: semantics-based detection of Android malware through static analysis
434
Citations
30
References
2014
Year
Unknown Venue
Hardware SecurityMobile SecuritySoftware SecurityMalware FamiliesEngineeringEvasion TechniqueProgram AnalysisInformation SecuritySoftware EngineeringMobile MalwareComputer ScienceAndroid MalwareStatic Program AnalysisSoftware AnalysisMalware AnalysisData SecurityPresent Apposcopy
We present Apposcopy, a new semantics-based approach for identifying a prevalent class of Android malware that steals private user information. Apposcopy incorporates (i) a high-level language for specifying signatures that describe semantic characteristics of malware families and (ii) a static analysis for deciding if a given application matches a malware signature. The signature matching algorithm of Apposcopy uses a combination of static taint analysis and a new form of program representation called Inter-Component Call Graph to efficiently detect Android applications that have certain control- and data-flow properties. We have evaluated Apposcopy on a corpus of real-world Android applications and show that it can effectively and reliably pinpoint malicious applications that belong to certain malware families.
| Year | Citations | |
|---|---|---|
Page 1
Page 1